2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2012-3809HIGH7.5Samsung Kies before 2.5.0.12094_27_11 has arbitrary directory modification.
CVE-2012-3808HIGH7.5Samsung Kies before 2.5.0.12094_27_11 has arbitrary file modification.
CVE-2012-3806HIGH7.5Samsung Kies before 2.5.0.12094_27_11 contains a NULL pointer dereference vulnerability which could allow remote attacke...
CVE-2012-2950HIGH8.1Gateway Geomatics MapServer for Windows before 3.0.6 contains a Local File Include Vulnerability which allows remote att...
CVE-2012-4434HIGH8.8fwknop before 2.0.3 allow remote authenticated users to cause a denial of service (server crash) or possibly execute arb...
CVE-2012-3490HIGH8.8The (1) my_popenv_impl and (2) my_spawnv functions in src/condor_utils/my_popen.cpp and the (3) systemCommand function i...
CVE-2012-2931HIGH7.2PHP code injection in TinyWebGallery before 1.8.8 allows remote authenticated users with admin privileges to inject arbi...
CVE-2012-2142HIGH7.8The error function in Error.cc in poppler before 0.21.4 allows remote attackers to execute arbitrary commands via a PDF ...
CVE-2012-5693HIGH8.8Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 allows remote attackers to execute arbitrary commands via ...
CVE-2012-5663HIGH7.5The isearch package (textproc/isearch) before 1.47.01nb1 uses the tempnam() function to create insecure temporary files ...
CVE-2012-5645HIGH7.5A denial of service flaw was found in the way the server component of Freeciv before 2.3.4 processed certain packets. A ...
CVE-2012-4980HIGH7.8Multiple stack-based buffer overflows in CFProfile.exe in Toshiba ConfigFree Utility 8.0.38 allow user-assisted attacker...
CVE-2012-4420HIGH7.5An information disclosure flaw was found in the way the Java Virtual Machine (JVM) implementation of Java SE 7 as provid...
CVE-2012-3462HIGH8.8A flaw was found in SSSD version 1.9.0. The SSSD's access-provider logic causes the result of the HBAC rule processing t...
CVE-2012-6111HIGH7.5gnome-keyring does not discard stored secrets when using gnome_keyring_lock_all_sync function
CVE-2012-3409HIGH7.8ecryptfs-utils: suid helper does not restrict mounting filesystems with nosuid,nodev which creates a possible privilege ...
CVE-2012-2656HIGH7.5An XML eXternal Entity (XXE) issue exists in Restlet 1.1.10 in an endpoint using XML transport, which lets a remote atta...
CVE-2012-2312HIGH7.8An Elevated Privileges issue exists in JBoss AS 7 Community Release due to the improper implementation in the security c...
CVE-2012-2130HIGH7.4A Security Bypass vulnerability exists in PolarSSL 0.99pre4 through 1.1.1 due to a weak encryption error when generating...
CVE-2012-1615HIGH7.8A Privilege Escalation vulnerability exits in Fedoraproject Sectool due to an incorrect DBus file.
CVE-2012-1592HIGH8.8A local code execution issue exists in Apache Struts2 when processing malformed XSLT files, which could let a malicious ...
CVE-2012-5562HIGH8.6A flaw was found in rhn-proxy. This vulnerability may allow the rhn-proxy to transmit user credentials in clear-text whe...
CVE-2012-4576HIGH7.8FreeBSD: Input Validation Flaw allows local users to gain elevated privileges
CVE-2012-4480HIGH7.8mom creates world-writable pid files in /var/run
CVE-2012-4428HIGH7.5openslp: SLPIntersectStringList()' Function has a DoS vulnerability

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now